Information Assurance (Supply Chain) - Manager
Information Assurance (Supply Chain) - Manager

Information Assurance (Supply Chain) - Manager

Manchester Full-Time 48000 - 72000 £ / year (est.) No home office possible
T

At a Glance

  • Tasks: Lead the Information Assurance team to manage supply chain risk and compliance.
  • Company: Join KPMG, a global leader in audit, tax, and advisory services.
  • Benefits: Enjoy flexible working options, professional development, and a vibrant company culture.
  • Why this job: Make a real impact on data security while collaborating with diverse teams.
  • Qualifications: Experience in information security and supply chain risk management is essential.
  • Other info: Opportunities for growth and certifications in a supportive environment.

The predicted salary is between 48000 - 72000 £ per year.

Location: Birmingham, Manchester, Leeds, Watford, Reading or Bristol

Role Description: The Information Assurance team is the 2nd Line of Defence, ensuring KPMG manages information security and data privacy risk and compliance in line with legislative, regulatory & client obligations, enabling the trust and growth agenda. As an Information Assurance Manager, you will be responsible for the delivery of the supply chain risk and assurance compliance programme. You will collaborate with teams across the firm to navigate complexities of the supply chain and ensure suppliers are compliant with KPMG security and data protection and privacy requirements, helping to minimise risk to our employees, clients and audited entities. The Information Assurance Manager will apply their supply chain risk and assurance skills to perform all relevant duties as part of the Information Assurance team.

Key Responsibilities:

  • Act as a trusted advisor to stakeholders, providing accurate, appropriate, timely assurance information regarding the KPMG supply chain across capabilities and firmwide.
  • Identify emerging trends and issues with the KPMG supply chain to shape and inform the KPMG risk posture.
  • Support the development and implementation of the annual service roadmap aligned to KPMG strategic goals and ambitions.
  • Develop the annualised audit schedule, applying a risk-based approach, proactively adapting the schedule to accommodate emerging risks or strategic requirements.
  • Be proactive in identification of continuous improvements to foster positive change within the Information Assurance team, seeking innovative solutions to enhance practices.
  • Deliver the 2nd LoD Supply Chain audit activity to monitor supply chain compliance against regulatory, client, global and local policy & standard requirements, including ISO27001.
  • Ensure that all supplier contracts include standardised Information Security and Data Privacy statements.
  • Define and report on Supply Chain Assurance metrics, providing insights into compliance and risk, highlighting areas for improvement.
  • Log all findings in the GRC tooling, track, review and monitor remediation results and associated evidence, signing off closure where appropriate.
  • Ensure all findings are linked to risks and the supply chain risk posture is documented and understood.
  • Proactively work with finding owners to ensure remediation action plans are defined and delivered in a timely manner.
  • Provide analysis and thematic reviews and consolidation of findings and recommend risk treatment plans to reduce risk for the firm.
  • Ensure audit work is documented in accordance with business standard and fully supports conclusions and overall opinion through 1st / 2nd level reviews.
  • Coach, performance manage and develop a team across multiple geographies.
  • Monitor the activities of the audit team to ensure that all work is delivered to a high standard.
  • Lead and conduct other Information Security & Privacy audit activity on behalf of KPMG (i.e. SOC2).

Skills and experience required:

  • Excellent management capability at a manager level, with the ability to motivate teams in multiple locations to deliver an exceptional service.
  • Outstanding stakeholder management skills, the ability to collaborate and develop relationships internally and externally.
  • Strong experience advising on supply chain matters, with appropriate background in developing and implementing supply chain risk and assurance frameworks.
  • Excellent audit management capability, with an ability to quality check auditors.
  • Solid working knowledge of ISO27001, Cyber Essentials/ Cyber Essentials Plus, NIST Cybersecurity Framework, CIS, SOC2, Data Protection (UK GDPR, DPA, PECR) and experience of operational implementation.
  • Good understanding of ancillary frameworks (EU AI Act, UK AI Frameworks).
  • Experience of maturing processes to deliver service improvements.
  • Excellent analytical and reporting skills, using presentation tools to present complex information with exceptional attention to detail.
  • Excellent communication skills, both written and verbal.
  • Well organised and able to maintain a high workload efficiently at a consistently high standard and manage the workload of a multi geolocated team.
  • Strong knowledge of information security controls.
  • Experience of implementation and working with GRC tools (ServiceNow) and supplier management tools (Coupa, Bitsight).
  • Understanding of a 3 lines of defence model (risk & assurance).
  • Be highly motivated and able to work independently.

Additional Requirements:

  • Significant experience in information security and supply chain risk and assurance.
  • Certifications in information security, such as CISM, CISMP, CISSP.

Information Assurance (Supply Chain) - Manager employer: TN United Kingdom

KPMG is an exceptional employer, offering a dynamic work culture that prioritises collaboration and innovation in the heart of Manchester. With a strong commitment to employee growth, KPMG provides extensive training and development opportunities, ensuring that you can advance your career while contributing to meaningful projects that enhance information security and compliance. The company's focus on diversity and inclusion, coupled with its supportive environment, makes it an ideal place for professionals seeking to make a significant impact in the field of Information Assurance.
T

Contact Detail:

TN United Kingdom Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Assurance (Supply Chain) - Manager

✨Tip Number 1

Network with professionals in the information assurance and supply chain sectors. Attend industry events, webinars, or local meetups to connect with people who work at KPMG or similar firms. This can give you insights into the company culture and potentially lead to referrals.

✨Tip Number 2

Familiarise yourself with KPMG's values and recent projects related to information assurance. Understanding their strategic goals will help you tailor your conversations and demonstrate how your skills align with their objectives during interviews.

✨Tip Number 3

Prepare for potential interview questions by reviewing common scenarios related to supply chain risk management and compliance. Think of specific examples from your past experience that showcase your problem-solving skills and ability to manage stakeholder relationships.

✨Tip Number 4

Stay updated on the latest trends and regulations in information security and data privacy. Being knowledgeable about frameworks like ISO27001 and GDPR will not only boost your confidence but also show your commitment to the field during discussions with KPMG.

We think you need these skills to ace Information Assurance (Supply Chain) - Manager

Management Capability
Stakeholder Management
Supply Chain Risk and Assurance Frameworks
Audit Management
ISO27001 Knowledge
Cyber Essentials/Cyber Essentials Plus
NIST Cybersecurity Framework
CIS Standards
SOC2 Experience
Data Protection Regulations (UK GDPR, DPA, PECR)
Understanding of EU AI Act and UK AI Frameworks
Process Maturity and Service Improvement
Analytical Skills
Reporting Skills
Presentation Skills
Attention to Detail
Communication Skills
Organisational Skills
Information Security Controls Knowledge
GRC Tools Experience (ServiceNow)
Supplier Management Tools Experience (Coupa, Bitsight)
Understanding of 3 Lines of Defence Model
Motivation and Independence
Certifications in Information Security (CISM, CISMP, CISSP)

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in information security and supply chain risk management. Use keywords from the job description to demonstrate that you meet the specific requirements of the role.

Craft a Compelling Cover Letter: In your cover letter, explain why you're passionate about information assurance and how your skills align with KPMG's objectives. Mention specific examples of past experiences where you've successfully managed supply chain risks.

Showcase Your Skills: Emphasise your management capabilities and stakeholder management skills. Provide examples of how you've motivated teams and collaborated with various stakeholders to achieve compliance and risk management goals.

Highlight Relevant Certifications: If you have certifications like CISM, CISMP, or CISSP, make sure to mention them prominently in your application. These credentials can set you apart as a qualified candidate for the Information Assurance Manager position.

How to prepare for a job interview at TN United Kingdom

✨Understand the Role Thoroughly

Before the interview, make sure you have a solid grasp of the responsibilities and expectations of the Information Assurance Manager role. Familiarise yourself with KPMG's supply chain risk and assurance frameworks, as well as relevant regulations like ISO27001 and GDPR.

✨Showcase Your Stakeholder Management Skills

Prepare examples that demonstrate your ability to manage and collaborate with stakeholders effectively. Highlight instances where you've built strong relationships and provided valuable assurance information, as this is crucial for the role.

✨Be Ready to Discuss Continuous Improvement

Think about how you've identified and implemented improvements in past roles. Be prepared to discuss specific examples of innovative solutions you've introduced to enhance practices within a team or organisation.

✨Demonstrate Analytical and Reporting Skills

Since the role requires excellent analytical skills, be ready to discuss how you've used data to inform decisions. Prepare to present complex information clearly, as this will showcase your attention to detail and communication abilities.

Information Assurance (Supply Chain) - Manager
TN United Kingdom
T
  • Information Assurance (Supply Chain) - Manager

    Manchester
    Full-Time
    48000 - 72000 £ / year (est.)

    Application deadline: 2027-03-30

  • T

    TN United Kingdom

Similar positions in other companies
Europas größte Jobbörse für Gen-Z
discover-jobs-cta
Discover now
>